Hello together,
I have the following Scenario:
- Guests are confined to a DMZ on my UTM 9.503 and can access the Internet through Transparent Proxy.
What have I done:
- I would like to have Guests use a outbound IP different from my other traffic. In order to do this, I followed SK126892 (How to change the outgoing interface for Web Filtering).
- In addition, I have created an additional address object for the outbound IP I would like to have them use. This object is now used in the Web Filter Profile for Guests.
- I also created a SNAT Rule, so that non web traffic from Guest network will also be behind this additional IP.
Result:
- For non web traffic (SSH for example), I can confirm that the additional address is used.
- For Web Traffic I see no change. When I disable the Web Filter Profile for Guests, I see the traffic goung out with my configured additional address, as soon as I enable the filter again I again see the public IP of my WAN Interface.
Could it be that it is not possible to use an additional address (only a different Interface)? I guess I could do a SNAT like "WAN -> Web -> Additional Address", but then ALL of my web traffic will be behind this IP (I want only Guests there).
Thanks for your help and many greetings ;)
Thomas
This thread was automatically locked due to age.